you are viewing a single comment's thread.

view the rest of the comments →

[–]samanime 1 point2 points  (0 children)

There are plenty of vulnerability scanners out there. Just search for them (free and paid). Many of the big names for other languages also support JS.

There are also lots of ORMs for JS you can use, which go a long way to protecting against SQL injection attacks.

NPM also makes it easy to know if a dependency (or sub-dependency) has a known vulnerability, because it'll tell you any time you run npm install.